Malware

Zusy.474476 removal instruction

Malware Removal

The Zusy.474476 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.474476 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Zusy.474476?


File Info:

name: C5DCF85A79A5E25ACEC4.mlw
path: /opt/CAPEv2/storage/binaries/f35dcb49c0ebb729ab8461db408da90b5aa3e93d97f1da7b92bb8406144c2bca
crc32: 425B850D
md5: c5dcf85a79a5e25acec431a39ef4c0d6
sha1: 402d626b6edec680448bf2b3c9529b2c04509104
sha256: f35dcb49c0ebb729ab8461db408da90b5aa3e93d97f1da7b92bb8406144c2bca
sha512: b05ec62805e21dc50789cf6e76ff1629eb0a068dd791a9d09d3a96d84b0531ed16dca36ded5316b579adef2ae4997480d13f3781d378e800528c31d33b2f6cfa
ssdeep: 3072:kw1+QCoaszE2dEqtZwDDt50Blvnqnviu2:kwSoICEqSDb0BlPqnviu
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F4048F628970BB13E951093417E06BFB801D3D2F4BE506097CADDA5F3763D9A349FA42
sha3_384: f16037c5a23077ba71903d365aa28feb12c7927754eb74f55c04eaa614b9f36a00ef3f42ee5bd1af4dc9e02dc5455403
ep_bytes: 68c0914200e8f0ffffffcd0000000000
timestamp: 2019-04-26 10:28:09

Version Info:

0: [No Data]

Zusy.474476 also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Zusy.474476
CAT-QuickHealTrojan.MuldVMF.S21469993
SkyhighBehavesLike.Win32.Generic.ct
McAfeeGenericRXHC-SS!C5DCF85A79A5
MalwarebytesGeneric.Malware.AI.DDS
SangforSuspicious.Win32.Save.vb
K7AntiVirusTrojan ( 005690671 )
K7GWTrojan ( 005690671 )
Cybereasonmalicious.a79a5e
VirITTrojan.Win32.VBUCornT.DRP
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/GenKryptik.FNGV
APEXMalicious
ClamAVWin.Malware.Midie-6847893-0
KasperskyHEUR:Trojan.Win32.VB.gen
BitDefenderGen:Variant.Zusy.474476
NANO-AntivirusTrojan.Win32.Banker1.fnwqkb
AvastWin32:VB-AJKU [Trj]
TencentTrojan.Win32.VB.ko
EmsisoftGen:Variant.Zusy.474476 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.MulDrop17.61497
VIPREGen:Variant.Zusy.474476
TrendMicroTROJ_GEN.R03BC0DD224
FireEyeGeneric.mg.c5dcf85a79a5e25a
SophosMal/VB-AQT
IkarusTrojan.Crypt
JiangminTrojan.VB.aqyg
GoogleDetected
AviraTR/Crypt.XPACK.Gen
VaristW32/VB_Troj.J.gen!Eldorado
Antiy-AVLTrojan/Win32.Wacatac.b
Kingsoftmalware.kb.a.999
MicrosoftTrojanDropper:Win32/Muldrop!pz
ArcabitTrojan.Zusy.D73D6C
ZoneAlarmHEUR:Trojan.Win32.VB.gen
GDataWin32.Trojan.VBClone.B
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Agent.R618781
Acronissuspicious
BitDefenderThetaAI:Packer.D7524E881F
ALYacGen:Variant.Zusy.474476
MAXmalware (ai score=84)
VBA32SScope.Trojan.VB
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BC0DD224
RisingTrojan.VBClone!1.E032 (CLASSIC)
YandexTrojan.VB!UrcQt0cTpO4
SentinelOneStatic AI – Malicious PE
MaxSecureVirus.W32.GenericML.xnet
FortinetW32/VBClone.D!tr
AVGWin32:VB-AJKU [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Zusy.474476?

Zusy.474476 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment